NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
11259  CVE-2011-4961  SilverStripe 2.3.x before 2.3.12 and 2.4.x before 2.4.6 allows remote authenticated users with the EDIT_PERMISSIONS permission to gain administrator privileges via a TreeMultiselectField that includes admin groups when adding a user to the selected groups.    Medium  2017-01-07  2012-10-15  View
76795  CVE-2000-0553  Race condition in IPFilter firewall 3.4.3 and earlier, when configured with overlapping "return-rst" and "keep state" rules, allows remote attackers to bypass access restrictions.    2.6  Low  2017-01-05  2008-09-05  View
11515  CVE-2011-5259  SQL injection vulnerability in lib/controllers/CentralController.php in OrangeHRM before 2.6.11.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.    6.8  Medium  2017-01-07  2013-02-13  View
77051  CVE-2000-0810  Auction Weaver 1.0 through 1.04 does not properly validate the names of form fields, which allows remote attackers to delete arbitrary files and directories via a .. (dot dot) attack.    7.5  High  2017-01-05  2008-09-10  View
11771  CVE-2010-0196  Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.3.2, and 8.x before 8.2.2 on Windows and Mac OS X, allows attackers to cause a denial of service or possibly execute arbitrary code via unknown vectors, a different vulnerability than CVE-2010-0192 and CVE-2010-0193.    9.3  High  2017-01-18  2010-08-21  View

Page 17352 of 17672, showing 5 records out of 88360 total, starting on record 86756, ending on 86760

Actions